Показано с 1 по 8 из 8.

ой беда смотреть всем (заявка № 147440)

  1. #1
    Junior Member (OID) Репутация
    Регистрация
    15.10.2013
    Сообщений
    4
    Вес репутации
    39

    ой беда смотреть всем

    значет так ! смотреть логи))))
    hijackthis.logvirusinfo_syscheck.zipvirusinfo_syscure.zip

  2. Будь в курсе!
    Реклама на VirusInfo

    Надоело быть жертвой? Стань профи по информационной безопасности, получай самую свежую информацию об угрозах и средствах защиты от ведущего российского аналитического центра Anti-Malware.ru:

    Anti-Malware Telegram
     

  3. #2
    Cyber Репутация Репутация Репутация Репутация Репутация Репутация Репутация Репутация Репутация Репутация Репутация Аватар для Info_bot
    Регистрация
    11.05.2011
    Сообщений
    2,287
    Вес репутации
    378
    Уважаемый(ая) Анашкин Анатолий, спасибо за обращение на наш форум!

    Удаление вирусов - абсолютно бесплатная услуга на VirusInfo.Info. Хелперы, в самое ближайшее время, ответят на Ваш запрос. Для оказания помощи необходимо предоставить логи сканирования утилитами АВЗ и HiJackThis, подробнее можно прочитать в правилах оформления запроса о помощи.

    Если наш сайт окажется полезен Вам и у Вас будет такая возможность - пожалуйста поддержите проект.

  4. #3
    Senior Helper Репутация Репутация Репутация Репутация Репутация Репутация Репутация Репутация Репутация Репутация Репутация Аватар для mike 1
    Регистрация
    05.11.2011
    Адрес
    Москва
    Сообщений
    42,908
    Вес репутации
    1060
    Опишите подробней вашу проблему.
    Инструкции выполняются в том порядке, в котором они вам даны.
    А вы совершаете эти 4 ошибки на форумах? Оставить отзыв Обучение на VirusInfo
    Защита от неизвестных троянцев-шифровальщиков => FixSecurity, Kaspersky Anti-Ransomware Tool
    Интересный блог Андрея Иванова по шифровальщикам
    Антивирус на 30 дней => https://clck.ru/FKsBt

  5. #4
    Junior Member (OID) Репутация
    Регистрация
    15.10.2013
    Сообщений
    4
    Вес репутации
    39
    тормозит и перезагрузка постоянно лаги жуть

  6. #5
    Senior Helper Репутация Репутация Репутация Репутация Репутация Репутация Репутация Репутация Репутация Репутация Репутация Аватар для mike 1
    Регистрация
    05.11.2011
    Адрес
    Москва
    Сообщений
    42,908
    Вес репутации
    1060
    1. Откройте AVZ => Файл => Мастер поиска и устранения проблем. Категория проблемы - поставьте "Системные проблемы", степень опасности - "Все проблемы". Нажмите "Пуск". Исправьте:

    Код:
    >>  Internet Explorer - разрешено использование ActiveX, не помеченных как безопасные
    >>  Internet Explorer - разрешена загрузка подписанных элементов ActiveX без запроса
    >>  Internet Explorer - разрешена загрузка неподписанных элементов ActiveX
    >>  Internet Explorer - разрешены автоматические запросы элементов управления ActiveX
    >>  Internet Explorer - разрешен запуск программ и файлов в окне IFRAME
    >>  Таймаут завершения служб находится за пределами допустимых значений
    2.
    Запустите, выберите проверку файлов за последние три месяца и нажмите продолжить. Должны открыться два отчета log.txt и info.txt. Прикрепите их к следующему сообщению. Если вы их закрыли, то логи по умолчанию сохраняются в одноименной папке (RSIT) в корне системного диска.
    Инструкции выполняются в том порядке, в котором они вам даны.
    А вы совершаете эти 4 ошибки на форумах? Оставить отзыв Обучение на VirusInfo
    Защита от неизвестных троянцев-шифровальщиков => FixSecurity, Kaspersky Anti-Ransomware Tool
    Интересный блог Андрея Иванова по шифровальщикам
    Антивирус на 30 дней => https://clck.ru/FKsBt

  7. #6
    Junior Member (OID) Репутация
    Регистрация
    15.10.2013
    Сообщений
    4
    Вес репутации
    39
    вот ещё

    Скрытый текст

    Лог утилиты random's system information tool 1.09 (автор: random/random)
    Run by UpMe at 2013-10-16 06:27:19
    Microsoft Windows 7 Ultimate Compact Service Pack 1
    Системный раздел C: размер 9 GB (39%) Свободно 23 GB
    Total RAM: 4095 MB (73% free)

    Logfile of Trend Micro HijackThis v2.0.4
    Scan saved at 6:27:23, on 16.10.2013
    Platform: Windows 7 SP1 (WinNT 6.00.3505)
    MSIE: Internet Explorer v10.0 (10.00.9200.16720)
    Boot mode: Normal

    Running processes:
    C:\Program Files (x86)\Opera\17.0.1241.45\opera.exe
    C:\Program Files (x86)\Opera\17.0.1241.45\opera_crashreporter.exe
    C:\Program Files (x86)\Opera\17.0.1241.45\opera.exe
    C:\Program Files (x86)\Opera\17.0.1241.45\opera.exe
    C:\Program Files (x86)\Opera\17.0.1241.45\opera.exe
    C:\Program Files (x86)\Windows Media Player\wmplayer.exe
    C:\Program Files\trend micro\UpMe.exe

    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
    R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
    R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
    F2 - REG:system.ini: UserInit=userinit.exe
    O4 - HKCU\..\Run: [ThreadManager.exe] C:\Program Files (x86)\Thread Manager\ThreadManager.exe
    O4 - HKCU\..\RunOnce: [Application Restart #1] C:\Users\UpMe\AppData\Local\Yandex\YandexBrowser\Application\browser.exe --flag-switches-begin --flag-switches-end --flag-switches-begin --flag-switches-end --disable-ssl-false-start --disable-client-side-phishing-detection --disable-breadcrumbs-api --gaia-profile-info --disable-sync-search-engines --disable-sync-tabs --disable-sync-themes --sync-try-ssltcp-first-for-xmpp --restore-last-session
    O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
    O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
    O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
    O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
    O4 - Startup: VeBest Icon Groups.lnk = C:\Program Files (x86)\VeBest\IconGroups\IconGroups.exe
    O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
    O17 - HKLM\System\CCS\Services\Tcpip\..\{82C20F8E-6395-4DAA-A9FC-37FDABB94635}: NameServer = 109.195.225.1 109.195.224.1
    O17 - HKLM\System\CS1\Services\Tcpip\..\{82C20F8E-6395-4DAA-A9FC-37FDABB94635}: NameServer = 109.195.225.1 109.195.224.1
    O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll
    O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
    O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
    O23 - Service: AMD External Events Utility - Unknown owner - C:\Windows\system32\atiesrxx.exe (file missing)
    O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
    O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
    O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
    O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
    O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
    O23 - Service: PandoraService (PanService) - Pandora.TV - C:\Program Files (x86)\PANDORA.TV\PanService\KMPService.exe
    O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
    O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
    O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
    O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
    O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
    O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
    O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
    O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
    O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
    O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
    O23 - Service: VIA Karaoke digital mixer Service (VIAKaraokeService) - Unknown owner - C:\Windows\system32\viakaraokesrv.exe (file missing)
    O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
    O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
    O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
    O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

    --
    End of file - 6304 bytes

    ======Список процессов======

    \SystemRoot\System32\smss.exe
    %SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
    wininit.exe
    %SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
    C:\Windows\system32\services.exe
    C:\Windows\system32\lsass.exe
    C:\Windows\system32\lsm.exe
    winlogon.exe
    C:\Windows\system32\svchost.exe -k DcomLaunch
    C:\Windows\system32\svchost.exe -k RPCSS
    "c:\Program Files\Microsoft Security Client\MsMpEng.exe"
    C:\Windows\system32\atiesrxx.exe
    C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
    C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
    C:\Windows\system32\svchost.exe -k netsvcs
    C:\Windows\system32\svchost.exe -k LocalService
    atieclxx
    C:\Windows\system32\svchost.exe -k NetworkService
    C:\Windows\System32\spoolsv.exe
    C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
    "C:\Windows\system32\Dwm.exe"
    C:\Windows\Explorer.EXE
    "taskhost.exe"
    "C:\Program Files (x86)\PANDORA.TV\PanService\KMPService.exe"
    C:\Windows\system32\viakaraokesrv.exe
    "c:\Program Files\Microsoft Security Client\NisSrv.exe"
    "C:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey
    "C:\Program Files (x86)\VeBest\IconGroups\x64\IconGroups.exe"
    "C:\Program Files (x86)\PANDORA.TV\PanService\KMPProcess.exe" KMPProcess
    "C:\Program Files (x86)\Opera\17.0.1241.45\opera.exe" --ran-launcher
    "C:\Program Files (x86)\Opera\17.0.1241.45\opera.exe" --ran-launcher /crash-reporter-parent-id=2364
    "C:\Program Files (x86)\Opera\17.0.1241.45\opera.exe" --type=renderer --lang=ru --disable-client-side-phishing-detection --crash-reporter-pid=2288 --channel="2364.2.733215782\1999373078" /prefetch:673131151
    "C:\Program Files (x86)\Opera\17.0.1241.45\opera.exe" --type=renderer --lang=ru --disable-client-side-phishing-detection --crash-reporter-pid=2288 --channel="2364.4.1266817203\427682675" /prefetch:673131151
    "C:\Program Files (x86)\Opera\17.0.1241.45\opera.exe" --type=gpu-process --channel="2364.5.7248517\1154864256" --crash-reporter-pid=2288 --disable-d3d11 --supports-dual-gpus=false --gpu-driver-bug-workarounds=0,9,18,25,27 --gpu-vendor-id=0x1002 --gpu-device-id=0x6758 --gpu-driver-vendor="Advanced Micro Devices, Inc." --gpu-driver-version=13.152.0.0 --crash-reporter-pid=2288 --ignored=" --type=renderer " /prefetch:822062411
    C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
    "C:\Program Files (x86)\Windows Media Player\wmplayer.exe"
    "C:\Users\UpMe\Downloads\RSITx64.exe"
    C:\Windows\system32\wbem\wmiprvse.exe

    ======Папка назначеных зданий======

    C:\Windows\tasks\Adobe Flash Player Updater.job

    =========Mozilla firefox=========

    ProfilePath - C:\Users\UpMe\AppData\Roaming\Mozilla\Firefox\Profiles\byetufcp.default

    [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
    "Description"=Adobe® Flash® Player 11.9.900.117 Plugin
    "Path"=C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_117.dll

    [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE]
    "Description"=
    "Path"=disabled

    [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@raidcall.en/RCplugin]
    "Description"=Raidcall plugin
    "Path"=C:\Users\UpMe\AppData\Roaming\raidcall\plugins\nprcplugin.dll


    [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
    "Description"=Adobe® Flash® Player 11.9.900.117 Plugin
    "Path"=C:\Windows\system32\Macromed\Flash\NPSWF64_11_9_900_117.dll

    [HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
    "Description"=
    "Path"=disabled


    C:\Users\UpMe\AppData\Roaming\Mozilla\Firefox\Profiles\byetufcp.default\extensions\
    [email protected]
    [email protected]
    {81BF1D23-5F17-408D-AC6B-BD6DF7CAF670}

    C:\Users\UpMe\AppData\Roaming\Mozilla\Firefox\Profiles\byetufcp.default\searchplugins\
    yqs-vbff-yandex.xml

    ======Снимок реестра======

    [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
    "MSC"=C:\Program Files\Microsoft Security Client\msseces.exe [2013-08-12 1356240]

    [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
    "ThreadManager.exe"=C:\Program Files (x86)\Thread Manager\ThreadManager.exe [2013-10-05 10915608]

    [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\RunOnce]
    "Application Restart #1"=C:\Users\UpMe\AppData\Local\Yandex\YandexBrowser\Application\browser.exe [2013-09-03 1333040]

    C:\Users\UpMe\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
    VeBest Icon Groups.lnk - C:\Program Files (x86)\VeBest\IconGroups\IconGroups.exe

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
    WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\explorer\SharedTaskScheduler]
    Windows DreamScene - {E31004D1-A431-41B8-826F-E902F9D95C81} - C:\Windows\System32\DreamScene.dll []

    [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
    "SecurityProviders"=credssp.dll

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MsMpSvc]

    [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
    "ConsentPromptBehaviorAdmin"=5
    "ConsentPromptBehaviorUser"=3
    "EnableLUA"=0
    "EnableUIADesktopToggle"=0
    "dontdisplaylastusername"=0
    "legalnoticecaption"=
    "legalnoticetext"=
    "shutdownwithoutlogon"=1
    "undockwithoutlogon"=1
    "SynchronousMachineGroupPolicy"=0
    "SynchronousUserGroupPolicy"=0

    [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
    "NoDriveTypeAutoRun"=145

    [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
    "NoActiveDesktop"=1
    "NoActiveDesktopChanges"=1
    "ForceActiveDesktopOn"=0
    "NoDriveTypeAutoRun"=60

    [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

    [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
    "vidc.mrle"=msrle32.dll
    "vidc.msvc"=msvidc32.dll
    "msacm.imaadpcm"=imaadp32.acm
    "msacm.msg711"=msg711.acm
    "msacm.msgsm610"=msgsm32.acm
    "msacm.msadpcm"=msadp32.acm
    "midimapper"=midimap.dll
    "wavemapper"=msacm32.drv
    "VIDC.UYVY"=msyuv.dll
    "VIDC.YUY2"=msyuv.dll
    "VIDC.YVYU"=msyuv.dll
    "VIDC.IYUV"=iyuv_32.dll
    "vidc.i420"=lvcod64.dll
    "VIDC.YVU9"=tsbyuv.dll
    "msacm.l3acm"=l3codeca.acm
    "wave"=wdmaud.drv
    "midi"=wdmaud.drv
    "mixer"=wdmaud.drv
    "aux"=wdmaud.drv
    "VIDC.LAGS"=lagarith.dll
    "VIDC.FFDS"=ff_vfw.dll
    "msacm.l3codecp"=l3codecp.acm
    "MSVideo"=vfwwdm32.dll
    "MSVideo8"=VfWWDM32.dll
    "wave1"=wdmaud.drv
    "midi1"=wdmaud.drv
    "mixer1"=wdmaud.drv
    "aux1"=wdmaud.drv

    ======Ассоциации файлов======

    .js - edit - C:\Windows\System32\Notepad.exe %1
    .js - open - C:\Windows\System32\WScript.exe "%1" %*

    ======Список файлов и папок, созданных за последние 3 месяца======

    2013-10-16 06:27:19 ----D---- C:\rsit
    2013-10-16 06:27:19 ----D---- C:\Program Files\trend micro
    2013-10-15 22:02:05 ----D---- C:\Program Files (x86)\Opera
    2013-10-14 22:09:05 ----D---- C:\Users\UpMe\AppData\Roaming\FileZilla
    2013-10-14 22:08:20 ----D---- C:\Program Files (x86)\FileZilla FTP Client
    2013-10-12 23:29:48 ----A---- C:\Windows\SYSWOW64\rsync.exe
    2013-10-12 22:42:36 ----D---- C:\Program Files (x86)\DesktopMania
    2013-10-12 02:54:19 ----A---- C:\Windows\ntbtlog.txt
    2013-10-12 01:50:43 ----D---- C:\Users\UpMe\AppData\Roaming\Media Player Classic
    2013-10-12 01:49:57 ----A---- C:\Windows\SYSWOW64\unrar.dll
    2013-10-12 01:49:48 ----D---- C:\Program Files (x86)\K-Lite Codec Pack
    2013-10-11 03:04:24 ----AC---- C:\Windows\SYSWOW64\ieui.dll
    2013-10-11 03:04:23 ----AC---- C:\Windows\system32\ieui.dll
    2013-10-11 03:04:22 ----A---- C:\Windows\SYSWOW64\iesetup.dll
    2013-10-11 03:04:21 ----AC---- C:\Windows\SYSWOW64\RegisterIEPKEYs.exe
    2013-10-11 03:04:21 ----AC---- C:\Windows\SYSWOW64\iesysprep.dll
    2013-10-11 03:04:21 ----AC---- C:\Windows\system32\RegisterIEPKEYs.exe
    2013-10-11 03:04:21 ----AC---- C:\Windows\system32\iesysprep.dll
    2013-10-11 03:04:21 ----AC---- C:\Windows\system32\iesetup.dll
    2013-10-11 03:04:21 ----AC---- C:\Windows\system32\iernonce.dll
    2013-10-11 03:04:21 ----AC---- C:\Windows\system32\ie4uinit.exe
    2013-10-11 03:04:21 ----A---- C:\Windows\SYSWOW64\iernonce.dll
    2013-10-11 03:04:20 ----AC---- C:\Windows\SYSWOW64\iertutil.dll
    2013-10-11 03:04:20 ----AC---- C:\Windows\system32\iertutil.dll
    2013-10-11 03:04:18 ----AC---- C:\Windows\SYSWOW64\msfeeds.dll
    2013-10-11 03:04:18 ----AC---- C:\Windows\system32\msfeeds.dll
    2013-10-11 03:04:17 ----AC---- C:\Windows\SYSWOW64\jscript.dll
    2013-10-11 03:04:17 ----AC---- C:\Windows\system32\jscript.dll
    2013-10-11 03:04:16 ----A---- C:\Windows\SYSWOW64\jscript9.dll
    2013-10-11 03:04:16 ----A---- C:\Windows\system32\jscript9.dll
    2013-10-11 03:04:15 ----AC---- C:\Windows\SYSWOW64\urlmon.dll
    2013-10-11 03:04:14 ----AC---- C:\Windows\system32\urlmon.dll
    2013-10-11 03:04:12 ----AC---- C:\Windows\SYSWOW64\wininet.dll
    2013-10-11 03:04:12 ----AC---- C:\Windows\SYSWOW64\jsproxy.dll
    2013-10-11 03:04:12 ----AC---- C:\Windows\system32\jsproxy.dll
    2013-10-11 03:04:11 ----AC---- C:\Windows\system32\wininet.dll
    2013-10-11 03:04:10 ----AC---- C:\Windows\SYSWOW64\ieframe.dll
    2013-10-11 03:04:09 ----AC---- C:\Windows\system32\ieframe.dll
    2013-10-11 03:04:06 ----AC---- C:\Windows\system32\mshtml.dll
    2013-10-11 03:04:03 ----AC---- C:\Windows\SYSWOW64\mshtml.dll
    2013-10-10 15:50:34 ----AC---- C:\Windows\system32\drivers\dxgkrnl.sys
    2013-10-10 15:50:32 ----AC---- C:\Windows\system32\scavengeui.dll
    2013-10-10 03:45:15 ----AC---- C:\Windows\system32\comctl32.dll
    2013-10-10 03:45:14 ----AC---- C:\Windows\SYSWOW64\comctl32.dll
    2013-10-10 03:45:12 ----AC---- C:\Windows\SYSWOW64\lpk.dll
    2013-10-10 03:45:12 ----AC---- C:\Windows\SYSWOW64\dciman32.dll
    2013-10-10 03:45:12 ----AC---- C:\Windows\SYSWOW64\atmfd.dll
    2013-10-10 03:45:12 ----AC---- C:\Windows\system32\lpk.dll
    2013-10-10 03:45:12 ----AC---- C:\Windows\system32\dciman32.dll
    2013-10-10 03:45:12 ----AC---- C:\Windows\system32\atmfd.dll
    2013-10-10 03:45:11 ----AC---- C:\Windows\SYSWOW64\fontsub.dll
    2013-10-10 03:45:11 ----AC---- C:\Windows\SYSWOW64\atmlib.dll
    2013-10-10 03:45:11 ----AC---- C:\Windows\system32\fontsub.dll
    2013-10-10 03:45:11 ----AC---- C:\Windows\system32\atmlib.dll
    2013-10-10 03:45:10 ----AC---- C:\Windows\system32\drivers\Wdf01000.sys
    2013-10-10 03:45:07 ----AC---- C:\Windows\SYSWOW64\WebClnt.dll
    2013-10-10 03:45:07 ----AC---- C:\Windows\SYSWOW64\davclnt.dll
    2013-10-10 03:45:07 ----AC---- C:\Windows\system32\WebClnt.dll
    2013-10-10 03:45:07 ----AC---- C:\Windows\system32\davclnt.dll
    2013-10-10 03:45:06 ----AC---- C:\Windows\system32\drivers\mrxdav.sys
    2013-10-10 03:45:05 ----AC---- C:\Windows\system32\mswsock.dll
    2013-10-10 03:45:05 ----AC---- C:\Windows\system32\drivers\tcpip.sys
    2013-10-10 03:45:05 ----AC---- C:\Windows\system32\drivers\afd.sys
    2013-10-10 03:45:04 ----AC---- C:\Windows\SYSWOW64\mswsock.dll
    2013-10-10 03:45:03 ----AC---- C:\Windows\system32\win32k.sys
    2013-10-10 03:45:01 ----AC---- C:\Windows\system32\ntoskrnl.exe
    2013-10-10 03:45:00 ----AC---- C:\Windows\SYSWOW64\ntkrnlpa.exe
    2013-10-10 03:44:59 ----AC---- C:\Windows\SYSWOW64\ntoskrnl.exe
    2013-10-10 03:44:59 ----AC---- C:\Windows\system32\advapi32.dll
    2013-10-10 03:44:58 ----AC---- C:\Windows\SYSWOW64\tdh.dll
    2013-10-10 03:44:58 ----AC---- C:\Windows\system32\tdh.dll
    2013-10-10 03:44:58 ----AC---- C:\Windows\system32\ntdll.dll
    2013-10-10 03:44:57 ----AC---- C:\Windows\SYSWOW64\ntdll.dll
    2013-10-10 03:44:57 ----AC---- C:\Windows\system32\wow64.dll
    2013-10-10 03:44:56 ----AC---- C:\Windows\SYSWOW64\advapi32.dll
    2013-10-10 03:44:55 ----AC---- C:\Windows\SYSWOW64\wow32.dll
    2013-10-10 03:44:55 ----AC---- C:\Windows\SYSWOW64\user.exe
    2013-10-10 03:44:55 ----AC---- C:\Windows\SYSWOW64\setup16.exe
    2013-10-10 03:44:55 ----AC---- C:\Windows\SYSWOW64\ntvdm64.dll
    2013-10-10 03:44:55 ----AC---- C:\Windows\SYSWOW64\instnm.exe
    2013-10-10 03:44:43 ----AC---- C:\Windows\SYSWOW64\PresentationCFFRasterizerNative_v0300.dll
    2013-10-10 03:44:43 ----AC---- C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
    2013-10-09 15:43:54 ----D---- C:\Users\UpMe\AppData\Roaming\Skype
    2013-10-09 15:43:41 ----RD---- C:\Program Files (x86)\Skype
    2013-10-09 15:43:37 ----D---- C:\ProgramData\Skype
    2013-10-09 15:35:15 ----D---- C:\Users\UpMe\AppData\Roaming\OpenOffice.org
    2013-10-09 15:24:39 ----D---- C:\Program Files (x86)\OpenOffice.org 3
    2013-10-07 11:34:56 ----D---- C:\Windows\system32\MRT
    2013-10-07 11:34:54 ----A---- C:\Windows\system32\MRT.exe
    2013-10-07 0059 ----D---- C:\ProgramData\boost_interprocess
    2013-10-06 23:58:39 ----A---- C:\Windows\SYSWOW64\XAudio2_7.dll
    2013-10-06 23:58:39 ----A---- C:\Windows\SYSWOW64\XAPOFX1_5.dll
    2013-10-06 23:58:39 ----A---- C:\Windows\system32\XAudio2_7.dll
    2013-10-06 23:58:39 ----A---- C:\Windows\system32\XAPOFX1_5.dll
    2013-10-06 23:58:38 ----A---- C:\Windows\SYSWOW64\xactengine3_7.dll
    2013-10-06 23:58:38 ----A---- C:\Windows\system32\xactengine3_7.dll
    2013-10-06 23:58:37 ----A---- C:\Windows\SYSWOW64\D3DCompiler_43.dll
    2013-10-06 23:58:37 ----A---- C:\Windows\system32\D3DCompiler_43.dll
    2013-10-06 23:58:36 ----A---- C:\Windows\SYSWOW64\d3dcsx_43.dll
    2013-10-06 23:58:36 ----A---- C:\Windows\system32\d3dcsx_43.dll
    2013-10-06 23:58:35 ----A---- C:\Windows\SYSWOW64\d3dx11_43.dll
    2013-10-06 23:58:35 ----A---- C:\Windows\system32\d3dx11_43.dll
    2013-10-06 23:58:34 ----A---- C:\Windows\SYSWOW64\d3dx10_43.dll
    2013-10-06 23:58:34 ----A---- C:\Windows\system32\d3dx10_43.dll
    2013-10-06 23:58:33 ----A---- C:\Windows\SYSWOW64\D3DX9_43.dll
    2013-10-06 23:58:33 ----A---- C:\Windows\system32\D3DX9_43.dll
    2013-10-06 23:58:32 ----A---- C:\Windows\SYSWOW64\XAudio2_6.dll
    2013-10-06 23:58:32 ----A---- C:\Windows\SYSWOW64\XAPOFX1_4.dll
    2013-10-06 23:58:32 ----A---- C:\Windows\system32\XAudio2_6.dll
    2013-10-06 23:58:32 ----A---- C:\Windows\system32\XAPOFX1_4.dll
    2013-10-06 23:58:31 ----A---- C:\Windows\SYSWOW64\xactengine3_6.dll
    2013-10-06 23:58:31 ----A---- C:\Windows\SYSWOW64\X3DAudio1_7.dll
    2013-10-06 23:58:31 ----A---- C:\Windows\system32\xactengine3_6.dll
    2013-10-06 23:58:31 ----A---- C:\Windows\system32\X3DAudio1_7.dll
    2013-10-06 23:58:30 ----A---- C:\Windows\SYSWOW64\XAudio2_5.dll
    2013-10-06 23:58:30 ----A---- C:\Windows\system32\XAudio2_5.dll
    2013-10-06 23:58:28 ----A---- C:\Windows\SYSWOW64\xactengine3_5.dll
    2013-10-06 23:58:28 ----A---- C:\Windows\system32\xactengine3_5.dll
    2013-10-06 23:58:27 ----A---- C:\Windows\SYSWOW64\D3DCompiler_42.dll
    2013-10-06 23:58:27 ----A---- C:\Windows\system32\D3DCompiler_42.dll
    2013-10-06 23:58:26 ----A---- C:\Windows\SYSWOW64\d3dcsx_42.dll
    2013-10-06 23:58:26 ----A---- C:\Windows\system32\d3dcsx_42.dll
    2013-10-06 23:58:25 ----A---- C:\Windows\SYSWOW64\d3dx11_42.dll
    2013-10-06 23:58:25 ----A---- C:\Windows\SYSWOW64\d3dx10_42.dll
    2013-10-06 23:58:25 ----A---- C:\Windows\system32\d3dx11_42.dll
    2013-10-06 23:58:25 ----A---- C:\Windows\system32\d3dx10_42.dll
    2013-10-06 23:58:24 ----A---- C:\Windows\SYSWOW64\D3DX9_42.dll
    2013-10-06 23:58:24 ----A---- C:\Windows\system32\D3DX9_42.dll
    2013-10-06 23:58:23 ----A---- C:\Windows\SYSWOW64\d3dx10_41.dll
    2013-10-06 23:58:23 ----A---- C:\Windows\SYSWOW64\D3DCompiler_41.dll
    2013-10-06 23:58:23 ----A---- C:\Windows\system32\d3dx10_41.dll
    2013-10-06 23:58:23 ----A---- C:\Windows\system32\D3DCompiler_41.dll
    2013-10-06 23:58:22 ----A---- C:\Windows\SYSWOW64\D3DX9_41.dll
    2013-10-06 23:58:22 ----A---- C:\Windows\system32\D3DX9_41.dll
    2013-10-06 23:58:21 ----A---- C:\Windows\SYSWOW64\XAudio2_4.dll
    2013-10-06 23:58:21 ----A---- C:\Windows\SYSWOW64\XAPOFX1_3.dll
    2013-10-06 23:58:21 ----A---- C:\Windows\system32\XAudio2_4.dll
    2013-10-06 23:58:21 ----A---- C:\Windows\system32\XAPOFX1_3.dll
    2013-10-06 23:58:20 ----A---- C:\Windows\SYSWOW64\xactengine3_4.dll
    2013-10-06 23:58:20 ----A---- C:\Windows\SYSWOW64\X3DAudio1_6.dll
    2013-10-06 23:58:20 ----A---- C:\Windows\system32\xactengine3_4.dll
    2013-10-06 23:58:20 ----A---- C:\Windows\system32\X3DAudio1_6.dll
    2013-10-06 23:58:19 ----A---- C:\Windows\SYSWOW64\D3DCompiler_40.dll
    2013-10-06 23:58:19 ----A---- C:\Windows\system32\D3DCompiler_40.dll
    2013-10-06 23:58:18 ----A---- C:\Windows\SYSWOW64\d3dx10_40.dll
    2013-10-06 23:58:18 ----A---- C:\Windows\system32\d3dx10_40.dll
    2013-10-06 23:58:17 ----A---- C:\Windows\SYSWOW64\D3DX9_40.dll
    2013-10-06 23:58:17 ----A---- C:\Windows\system32\D3DX9_40.dll
    2013-10-06 23:58:16 ----A---- C:\Windows\SYSWOW64\XAudio2_3.dll
    2013-10-06 23:58:16 ----A---- C:\Windows\SYSWOW64\XAPOFX1_2.dll
    2013-10-06 23:58:16 ----A---- C:\Windows\SYSWOW64\xactengine3_3.dll
    2013-10-06 23:58:16 ----A---- C:\Windows\system32\XAudio2_3.dll
    2013-10-06 23:58:16 ----A---- C:\Windows\system32\XAPOFX1_2.dll
    2013-10-06 23:58:16 ----A---- C:\Windows\system32\xactengine3_3.dll
    2013-10-06 23:58:15 ----A---- C:\Windows\SYSWOW64\X3DAudio1_5.dll
    2013-10-06 23:58:15 ----A---- C:\Windows\system32\X3DAudio1_5.dll
    2013-10-06 23:58:14 ----A---- C:\Windows\SYSWOW64\XAudio2_2.dll
    2013-10-06 23:58:14 ----A---- C:\Windows\SYSWOW64\XAPOFX1_1.dll
    2013-10-06 23:58:14 ----A---- C:\Windows\SYSWOW64\xactengine3_2.dll
    2013-10-06 23:58:14 ----A---- C:\Windows\system32\XAudio2_2.dll
    2013-10-06 23:58:14 ----A---- C:\Windows\system32\XAPOFX1_1.dll
    2013-10-06 23:58:14 ----A---- C:\Windows\system32\xactengine3_2.dll
    2013-10-06 23:58:13 ----A---- C:\Windows\SYSWOW64\d3dx10_39.dll
    2013-10-06 23:58:13 ----A---- C:\Windows\SYSWOW64\D3DCompiler_39.dll
    2013-10-06 23:58:13 ----A---- C:\Windows\system32\d3dx10_39.dll
    2013-10-06 23:58:13 ----A---- C:\Windows\system32\D3DCompiler_39.dll
    2013-10-06 23:58:12 ----A---- C:\Windows\SYSWOW64\D3DX9_39.dll
    2013-10-06 23:58:12 ----A---- C:\Windows\system32\D3DX9_39.dll
    2013-10-06 23:58:11 ----A---- C:\Windows\SYSWOW64\XAudio2_1.dll
    2013-10-06 23:58:11 ----A---- C:\Windows\SYSWOW64\XAPOFX1_0.dll
    2013-10-06 23:58:11 ----A---- C:\Windows\SYSWOW64\xactengine3_1.dll
    2013-10-06 23:58:11 ----A---- C:\Windows\system32\XAudio2_1.dll
    2013-10-06 23:58:11 ----A---- C:\Windows\system32\XAPOFX1_0.dll
    2013-10-06 23:58:11 ----A---- C:\Windows\system32\xactengine3_1.dll
    2013-10-06 23:58:10 ----A---- C:\Windows\SYSWOW64\X3DAudio1_4.dll
    2013-10-06 23:58:10 ----A---- C:\Windows\system32\X3DAudio1_4.dll
    2013-10-06 23:58:09 ----A---- C:\Windows\SYSWOW64\d3dx10_38.dll
    2013-10-06 23:58:09 ----A---- C:\Windows\SYSWOW64\D3DCompiler_38.dll
    2013-10-06 23:58:09 ----A---- C:\Windows\system32\d3dx10_38.dll
    2013-10-06 23:58:09 ----A---- C:\Windows\system32\D3DCompiler_38.dll
    2013-10-06 23:58:08 ----A---- C:\Windows\SYSWOW64\D3DX9_38.dll
    2013-10-06 23:58:08 ----A---- C:\Windows\system32\D3DX9_38.dll
    2013-10-06 23:58:07 ----A---- C:\Windows\SYSWOW64\XAudio2_0.dll
    2013-10-06 23:58:07 ----A---- C:\Windows\system32\XAudio2_0.dll
    2013-10-06 23:58:06 ----A---- C:\Windows\SYSWOW64\xactengine3_0.dll
    2013-10-06 23:58:06 ----A---- C:\Windows\system32\xactengine3_0.dll
    2013-10-06 23:58:05 ----A---- C:\Windows\SYSWOW64\X3DAudio1_3.dll
    2013-10-06 23:58:05 ----A---- C:\Windows\system32\X3DAudio1_3.dll
    2013-10-06 23:58:03 ----A---- C:\Windows\SYSWOW64\d3dx10_37.dll
    2013-10-06 23:58:03 ----A---- C:\Windows\SYSWOW64\D3DCompiler_37.dll
    2013-10-06 23:58:03 ----A---- C:\Windows\system32\d3dx10_37.dll
    2013-10-06 23:58:03 ----A---- C:\Windows\system32\D3DCompiler_37.dll
    2013-10-06 23:58:02 ----A---- C:\Windows\SYSWOW64\D3DX9_37.dll
    2013-10-06 23:58:02 ----A---- C:\Windows\system32\D3DX9_37.dll
    2013-10-06 23:58:00 ----A---- C:\Windows\SYSWOW64\xactengine2_10.dll
    2013-10-06 23:58:00 ----A---- C:\Windows\system32\xactengine2_10.dll
    2013-10-06 23:57:59 ----A---- C:\Windows\SYSWOW64\d3dx10_36.dll
    2013-10-06 23:57:59 ----A---- C:\Windows\SYSWOW64\D3DCompiler_36.dll
    2013-10-06 23:57:59 ----A---- C:\Windows\system32\d3dx10_36.dll
    2013-10-06 23:57:59 ----A---- C:\Windows\system32\D3DCompiler_36.dll
    2013-10-06 23:57:58 ----A---- C:\Windows\SYSWOW64\d3dx9_36.dll
    2013-10-06 23:57:58 ----A---- C:\Windows\system32\d3dx9_36.dll
    2013-10-06 23:57:57 ----A---- C:\Windows\SYSWOW64\xactengine2_9.dll
    2013-10-06 23:57:57 ----A---- C:\Windows\system32\xactengine2_9.dll
    2013-10-06 23:57:56 ----A---- C:\Windows\SYSWOW64\d3dx10_35.dll
    2013-10-06 23:57:56 ----A---- C:\Windows\SYSWOW64\D3DCompiler_35.dll
    2013-10-06 23:57:56 ----A---- C:\Windows\system32\d3dx10_35.dll
    2013-10-06 23:57:56 ----A---- C:\Windows\system32\D3DCompiler_35.dll
    2013-10-06 23:57:55 ----A---- C:\Windows\SYSWOW64\xactengine2_8.dll
    2013-10-06 23:57:55 ----A---- C:\Windows\SYSWOW64\X3DAudio1_2.dll
    2013-10-06 23:57:55 ----A---- C:\Windows\SYSWOW64\d3dx9_35.dll
    2013-10-06 23:57:55 ----A---- C:\Windows\system32\xactengine2_8.dll
    2013-10-06 23:57:55 ----A---- C:\Windows\system32\X3DAudio1_2.dll
    2013-10-06 23:57:55 ----A---- C:\Windows\system32\d3dx9_35.dll
    2013-10-06 23:57:54 ----A---- C:\Windows\SYSWOW64\d3dx10_34.dll
    2013-10-06 23:57:54 ----A---- C:\Windows\SYSWOW64\D3DCompiler_34.dll
    2013-10-06 23:57:54 ----A---- C:\Windows\system32\d3dx10_34.dll
    2013-10-06 23:57:54 ----A---- C:\Windows\system32\D3DCompiler_34.dll
    2013-10-06 23:57:53 ----A---- C:\Windows\SYSWOW64\d3dx9_34.dll
    2013-10-06 23:57:53 ----A---- C:\Windows\system32\d3dx9_34.dll
    2013-10-06 23:57:52 ----A---- C:\Windows\SYSWOW64\xinput1_3.dll
    2013-10-06 23:57:52 ----A---- C:\Windows\system32\xinput1_3.dll
    2013-10-06 23:57:51 ----A---- C:\Windows\SYSWOW64\xactengine2_7.dll
    2013-10-06 23:57:51 ----A---- C:\Windows\system32\xactengine2_7.dll
    2013-10-06 23:57:50 ----A---- C:\Windows\SYSWOW64\d3dx10_33.dll
    2013-10-06 23:57:50 ----A---- C:\Windows\SYSWOW64\D3DCompiler_33.dll
    2013-10-06 23:57:50 ----A---- C:\Windows\system32\d3dx10_33.dll
    2013-10-06 23:57:50 ----A---- C:\Windows\system32\D3DCompiler_33.dll
    2013-10-06 23:57:49 ----A---- C:\Windows\SYSWOW64\d3dx9_33.dll
    2013-10-06 23:57:49 ----A---- C:\Windows\system32\d3dx9_33.dll
    2013-10-06 23:57:48 ----A---- C:\Windows\SYSWOW64\xactengine2_6.dll
    2013-10-06 23:57:48 ----A---- C:\Windows\system32\xactengine2_6.dll
    2013-10-06 23:57:46 ----A---- C:\Windows\SYSWOW64\xactengine2_5.dll
    2013-10-06 23:57:46 ----A---- C:\Windows\system32\xactengine2_5.dll
    2013-10-06 23:57:45 ----A---- C:\Windows\SYSWOW64\d3dx10.dll
    2013-10-06 23:57:45 ----A---- C:\Windows\system32\d3dx10.dll
    2013-10-06 23:57:44 ----A---- C:\Windows\SYSWOW64\xactengine2_4.dll
    2013-10-06 23:57:44 ----A---- C:\Windows\SYSWOW64\d3dx9_32.dll
    2013-10-06 23:57:44 ----A---- C:\Windows\system32\xactengine2_4.dll
    2013-10-06 23:57:44 ----A---- C:\Windows\system32\d3dx9_32.dll
    2013-10-06 23:57:43 ----A---- C:\Windows\SYSWOW64\x3daudio1_1.dll
    2013-10-06 23:57:43 ----A---- C:\Windows\SYSWOW64\d3dx9_31.dll
    2013-10-06 23:57:43 ----A---- C:\Windows\system32\x3daudio1_1.dll
    2013-10-06 23:57:43 ----A---- C:\Windows\system32\d3dx9_31.dll
    2013-10-06 23:57:42 ----A---- C:\Windows\SYSWOW64\xactengine2_3.dll
    2013-10-06 23:57:42 ----A---- C:\Windows\system32\xactengine2_3.dll
    2013-10-06 23:57:41 ----A---- C:\Windows\SYSWOW64\xinput1_2.dll
    2013-10-06 23:57:41 ----A---- C:\Windows\system32\xinput1_2.dll
    2013-10-06 23:57:40 ----A---- C:\Windows\SYSWOW64\xinput1_1.dll
    2013-10-06 23:57:40 ----A---- C:\Windows\SYSWOW64\xactengine2_2.dll
    2013-10-06 23:57:40 ----A---- C:\Windows\system32\xinput1_1.dll
    2013-10-06 23:57:40 ----A---- C:\Windows\system32\xactengine2_2.dll
    2013-10-06 23:57:39 ----A---- C:\Windows\SYSWOW64\xactengine2_1.dll
    2013-10-06 23:57:39 ----A---- C:\Windows\system32\xactengine2_1.dll
    2013-10-06 23:57:35 ----A---- C:\Windows\SYSWOW64\d3dx9_30.dll
    2013-10-06 23:57:35 ----A---- C:\Windows\system32\d3dx9_30.dll
    2013-10-06 23:57:34 ----A---- C:\Windows\SYSWOW64\xactengine2_0.dll
    2013-10-06 23:57:34 ----A---- C:\Windows\SYSWOW64\x3daudio1_0.dll
    2013-10-06 23:57:34 ----A---- C:\Windows\system32\xactengine2_0.dll
    2013-10-06 23:57:34 ----A---- C:\Windows\system32\x3daudio1_0.dll
    2013-10-06 23:57:33 ----A---- C:\Windows\SYSWOW64\d3dx9_29.dll
    2013-10-06 23:57:33 ----A---- C:\Windows\system32\d3dx9_29.dll
    2013-10-06 23:57:32 ----A---- C:\Windows\SYSWOW64\d3dx9_28.dll
    2013-10-06 23:57:32 ----A---- C:\Windows\system32\d3dx9_28.dll
    2013-10-06 23:57:31 ----A---- C:\Windows\SYSWOW64\d3dx9_27.dll
    2013-10-06 23:57:31 ----A---- C:\Windows\system32\d3dx9_27.dll
    2013-10-06 23:57:30 ----A---- C:\Windows\SYSWOW64\d3dx9_26.dll
    2013-10-06 23:57:30 ----A---- C:\Windows\system32\d3dx9_26.dll
    2013-10-06 23:57:29 ----A---- C:\Windows\SYSWOW64\d3dx9_25.dll
    2013-10-06 23:57:29 ----A---- C:\Windows\system32\d3dx9_25.dll
    2013-10-06 23:57:28 ----A---- C:\Windows\SYSWOW64\d3dx9_24.dll
    2013-10-06 23:57:28 ----A---- C:\Windows\system32\d3dx9_24.dll
    2013-10-06 23:55:37 ----D---- C:\Windows\SYSWOW64\directx
    2013-10-06 22:59:14 ----D---- C:\Program Files (x86)\Cheat Engine 6.3
    2013-10-06 22:44:11 ----D---- C:\ProgramData\ATI
    2013-10-06 22:43:38 ----D---- C:\Program Files (x86)\AMD AVT
    2013-10-06 22:33:20 ----A---- C:\Windows\SYSWOW64\PerfStringBackup.INI
    2013-10-06 22:29:34 ----D---- C:\ProgramData\Package Cache
    2013-10-06 22:29:32 ----A---- C:\Windows\SYSWOW64\OVDecode.dll
    2013-10-06 22:29:32 ----A---- C:\Windows\SYSWOW64\OpenVideo.dll
    2013-10-06 22:29:32 ----A---- C:\Windows\SYSWOW64\OpenCL.dll
    2013-10-06 22:29:32 ----A---- C:\Windows\SYSWOW64\atioglxx.dll
    2013-10-06 22:29:32 ----A---- C:\Windows\SYSWOW64\atimpc32.dll
    2013-10-06 22:29:32 ----A---- C:\Windows\SYSWOW64\atiglpxx.dll
    2013-10-06 22:29:32 ----A---- C:\Windows\SYSWOW64\atigktxx.dll
    2013-10-06 22:29:32 ----A---- C:\Windows\SYSWOW64\aticalrt.dll
    2013-10-06 22:29:32 ----A---- C:\Windows\SYSWOW64\aticaldd.dll
    2013-10-06 22:29:32 ----A---- C:\Windows\SYSWOW64\aticalcl.dll
    2013-10-06 22:29:32 ----A---- C:\Windows\SYSWOW64\atiadlxy.dll
    2013-10-06 22:29:32 ----A---- C:\Windows\SYSWOW64\amdpcom32.dll
    2013-10-06 22:29:32 ----A---- C:\Windows\SYSWOW64\amdocl.dll
    2013-10-06 22:29:32 ----A---- C:\Windows\system32\OVDecode64.dll
    2013-10-06 22:29:32 ----A---- C:\Windows\system32\OpenVideo64.dll
    2013-10-06 22:29:32 ----A---- C:\Windows\system32\OpenCL.dll
    2013-10-06 22:29:32 ----A---- C:\Windows\system32\drivers\atikmpag.sys
    2013-10-06 22:29:32 ----A---- C:\Windows\system32\drivers\atikmdag.sys
    2013-10-06 22:29:32 ----A---- C:\Windows\system32\drivers\AtihdW76.sys
    2013-10-06 22:29:32 ----A---- C:\Windows\system32\drivers\ati2erec.dll
    2013-10-06 22:29:32 ----A---- C:\Windows\system32\DelayAPO.dll
    2013-10-06 22:29:32 ----A---- C:\Windows\system32\coinst_13.152.dll
    2013-10-06 22:29:32 ----A---- C:\Windows\system32\clinfo.exe
    2013-10-06 22:29:32 ----A---- C:\Windows\system32\ativvaxy_cik_nd.dat
    2013-10-06 22:29:32 ----A---- C:\Windows\system32\ativvaxy_cik.dat
    2013-10-06 22:29:32 ----A---- C:\Windows\system32\ativce02.dat
    2013-10-06 22:29:32 ----A---- C:\Windows\system32\atiumd6a.dll
    2013-10-06 22:29:32 ----A---- C:\Windows\system32\atiumd64.dll
    2013-10-06 22:29:32 ----A---- C:\Windows\system32\atiu9p64.dll
    2013-10-06 22:29:32 ----A---- C:\Windows\system32\atitmm64.dll
    2013-10-06 22:29:32 ----A---- C:\Windows\system32\atio6axx.dll
    2013-10-06 22:29:32 ----A---- C:\Windows\system32\atimuixx.dll
    2013-10-06 22:29:32 ----A---- C:\Windows\system32\atimpc64.dll
    2013-10-06 22:29:32 ----A---- C:\Windows\system32\atiicdxx.dat
    2013-10-06 22:29:32 ----A---- C:\Windows\system32\atiglpxx.dll
    2013-10-06 22:29:32 ----A---- C:\Windows\system32\atig6txx.dll
    2013-10-06 22:29:32 ----A---- C:\Windows\system32\atig6pxx.dll
    2013-10-06 22:29:32 ----A---- C:\Windows\system32\atiesrxx.exe
    2013-10-06 22:29:32 ----A---- C:\Windows\system32\atieclxx.exe
    2013-10-06 22:29:32 ----A---- C:\Windows\system32\atidemgy.dll
    2013-10-06 22:29:32 ----A---- C:\Windows\system32\aticalrt64.dll
    2013-10-06 22:29:32 ----A---- C:\Windows\system32\aticaldd64.dll
    2013-10-06 22:29:32 ----A---- C:\Windows\system32\aticalcl64.dll
    2013-10-06 22:29:32 ----A---- C:\Windows\system32\atiapfxx.exe
    2013-10-06 22:29:32 ----A---- C:\Windows\system32\atiadlxx.dll
    2013-10-06 22:29:32 ----A---- C:\Windows\system32\amdpcom64.dll
    2013-10-06 22:29:32 ----A---- C:\Windows\system32\amdocl64.dll
    2013-10-06 22:23:15 ----D---- C:\ProgramData\Rublik
    2013-10-06 22:23:12 ----D---- C:\Users\UpMe\AppData\Roaming\Rublik
    2013-10-06 22:23:02 ----D---- C:\Program Files (x86)\Rublik
    2013-10-06 21:27:59 ----D---- C:\Users\UpMe\AppData\Roaming\Notepad++
    2013-10-06 20:12:21 ----D---- C:\Program Files (x86)\Notepad++
    2013-10-05 16:52:27 ----AC---- C:\Windows\system32\WindowsCodecs.dll
    2013-10-05 16:52:26 ----AC---- C:\Windows\SYSWOW64\WindowsCodecs.dll
    2013-10-05 10:50:30 ----AC---- C:\Windows\system32\DWrite.dll
    2013-10-05 10:50:29 ----AC---- C:\Windows\SYSWOW64\DWrite.dll
    2013-10-05 10:45:38 ----D---- C:\Users\UpMe\AppData\Roaming\ATI
    2013-10-05 10:41:02 ----D---- C:\Windows\SYSWOW64\Wat
    2013-10-05 10:41:02 ----D---- C:\Windows\system32\Wat
    2013-10-05 10:28:23 ----D---- C:\Program Files (x86)\Microsoft.NET
    2013-10-05 09:32:02 ----D---- C:\Program Files\Common Files\logishrd
    2013-10-05 0948 ----AC---- C:\Windows\system32\drivers\WdfLdr.sys
    2013-10-05 0948 ----A---- C:\Windows\system32\Wdfres.dll
    2013-10-05 09:01:22 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
    2013-10-05 09:01:21 ----A---- C:\Windows\SYSWOW64\elshyph.dll
    2013-10-05 09:01:21 ----A---- C:\Windows\system32\elshyph.dll
    2013-10-05 09:01:20 ----AC---- C:\Windows\SYSWOW64\msls31.dll
    2013-10-05 09:01:19 ----AC---- C:\Windows\SYSWOW64\wextract.exe
    2013-10-05 09:01:19 ----AC---- C:\Windows\SYSWOW64\webcheck.dll
    2013-10-05 09:01:19 ----AC---- C:\Windows\SYSWOW64\vbscript.dll
    2013-10-05 09:01:19 ----AC---- C:\Windows\SYSWOW64\msrating.dll
    2013-10-05 09:01:19 ----AC---- C:\Windows\SYSWOW64\mshtmled.dll
    2013-10-05 09:01:19 ----AC---- C:\Windows\SYSWOW64\inseng.dll
    2013-10-05 09:01:19 ----AC---- C:\Windows\SYSWOW64\iexpress.exe
    2013-10-05 09:01:19 ----A---- C:\Windows\SYSWOW64\mshtmlmedia.dll
    2013-10-05 09:01:18 ----AC---- C:\Windows\SYSWOW64\pngfilt.dll
    2013-10-05 09:01:18 ----AC---- C:\Windows\SYSWOW64\occache.dll
    2013-10-05 09:01:18 ----AC---- C:\Windows\SYSWOW64\ieUnatt.exe
    2013-10-05 09:01:17 ----AC---- C:\Windows\SYSWOW64\mshta.exe
    2013-10-05 09:01:17 ----AC---- C:\Windows\SYSWOW64\msfeedssync.exe
    2013-10-05 09:01:17 ----AC---- C:\Windows\SYSWOW64\msfeedsbs.dll
    2013-10-05 09:01:17 ----AC---- C:\Windows\SYSWOW64\imgutil.dll
    2013-10-05 09:01:17 ----AC---- C:\Windows\SYSWOW64\iepeers.dll
    2013-10-05 09:01:17 ----AC---- C:\Windows\SYSWOW64\IEAdvpack.dll
    2013-10-05 09:01:16 ----AC---- C:\Windows\SYSWOW64\SetIEInstalledDate.exe
    2013-10-05 09:01:16 ----AC---- C:\Windows\SYSWOW64\mshtmler.dll
    2013-10-05 09:01:15 ----AC---- C:\Windows\SYSWOW64\url.dll
    2013-10-05 09:01:15 ----AC---- C:\Windows\SYSWOW64\iedkcs32.dll
    2013-10-05 09:01:15 ----AC---- C:\Windows\SYSWOW64\ieapfltr.dll
    2013-10-05 09:01:15 ----AC---- C:\Windows\SYSWOW64\ieapfltr.dat
    2013-10-05 09:01:15 ----AC---- C:\Windows\SYSWOW64\dxtrans.dll
    2013-10-05 09:01:15 ----AC---- C:\Windows\SYSWOW64\dxtmsft.dll
    2013-10-05 09:01:14 ----AC---- C:\Windows\SYSWOW64\licmgr10.dll
    2013-10-05 09:01:14 ----AC---- C:\Windows\SYSWOW64\icardie.dll
    2013-10-05 09:01:12 ----AC---- C:\Windows\system32\msrating.dll
    2013-10-05 09:01:11 ----AC---- C:\Windows\system32\msls31.dll
    2013-10-05 09:01:11 ----AC---- C:\Windows\system32\ieapfltr.dll
    2013-10-05 09:01:11 ----AC---- C:\Windows\system32\ieapfltr.dat
    2013-10-05 09:01:11 ----AC---- C:\Windows\system32\icardie.dll
    2013-10-05 09:01:11 ----AC---- C:\Windows\system32\dxtrans.dll
    2013-10-05 09:01:11 ----AC---- C:\Windows\system32\dxtmsft.dll
    2013-10-05 09:01:10 ----AC---- C:\Windows\system32\webcheck.dll
    2013-10-05 09:01:10 ----AC---- C:\Windows\system32\url.dll
    2013-10-05 09:01:10 ----AC---- C:\Windows\system32\licmgr10.dll
    2013-10-05 09:01:10 ----AC---- C:\Windows\system32\iedkcs32.dll
    2013-10-05 09:01:10 ----A---- C:\Windows\system32\mshtmlmedia.dll
    2013-10-05 09:01:09 ----AC---- C:\Windows\system32\wextract.exe
    2013-10-05 09:01:09 ----AC---- C:\Windows\system32\vbscript.dll
    2013-10-05 09:01:09 ----AC---- C:\Windows\system32\mshtmled.dll
    2013-10-05 09:01:09 ----AC---- C:\Windows\system32\inseng.dll
    2013-10-05 09:01:09 ----AC---- C:\Windows\system32\iexpress.exe
    2013-10-05 09:01:08 ----AC---- C:\Windows\system32\pngfilt.dll
    2013-10-05 09:01:08 ----AC---- C:\Windows\system32\occache.dll
    2013-10-05 09:01:08 ----AC---- C:\Windows\system32\mshta.exe
    2013-10-05 09:01:08 ----AC---- C:\Windows\system32\ieUnatt.exe
    2013-10-05 09:01:07 ----AC---- C:\Windows\system32\SetIEInstalledDate.exe
    2013-10-05 09:01:07 ----AC---- C:\Windows\system32\msfeedssync.exe
    2013-10-05 09:01:07 ----AC---- C:\Windows\system32\msfeedsbs.dll
    2013-10-05 09:01:07 ----AC---- C:\Windows\system32\imgutil.dll
    2013-10-05 09:01:07 ----AC---- C:\Windows\system32\iepeers.dll
    2013-10-05 09:01:07 ----AC---- C:\Windows\system32\IEAdvpack.dll
    2013-10-05 09:01:06 ----AC---- C:\Windows\system32\mshtmler.dll
    2013-10-05 08:52:25 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-user32-l1-1-0.dll
    2013-10-05 08:52:25 ----AH---- C:\Windows\system32\api-ms-win-downlevel-version-l1-1-0.dll
    2013-10-05 08:52:25 ----AH---- C:\Windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll
    2013-10-05 08:52:25 ----AH---- C:\Windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll
    2013-10-05 08:52:25 ----AH---- C:\Windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll
    2013-10-05 08:52:25 ----AH---- C:\Windows\system32\api-ms-win-downlevel-shell32-l1-1-0.dll
    2013-10-05 08:52:24 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-version-l1-1-0.dll
    2013-10-05 08:52:24 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-shlwapi-l2-1-0.dll
    2013-10-05 08:52:24 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-shlwapi-l1-1-0.dll
    2013-10-05 08:52:24 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-shell32-l1-1-0.dll
    2013-10-05 08:52:24 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-ole32-l1-1-0.dll
    2013-10-05 08:52:24 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-normaliz-l1-1-0.dll
    2013-10-05 08:52:24 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-advapi32-l2-1-0.dll
    2013-10-05 08:52:24 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-advapi32-l1-1-0.dll
    2013-10-05 08:52:24 ----AH---- C:\Windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll
    2013-10-05 08:52:24 ----AH---- C:\Windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll
    2013-10-05 08:52:24 ----AH---- C:\Windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll
    2013-10-05 08:52:24 ----AH---- C:\Windows\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll
    2013-10-05 08:52:24 ----AC---- C:\Windows\SYSWOW64\XpsPrint.dll
    2013-10-05 08:52:24 ----AC---- C:\Windows\SYSWOW64\XpsGdiConverter.dll
    2013-10-05 08:52:23 ----AC---- C:\Windows\SYSWOW64\msmpeg2vdec.dll
    2013-10-05 08:52:23 ----AC---- C:\Windows\system32\XpsPrint.dll
    2013-10-05 08:52:23 ----AC---- C:\Windows\system32\XpsGdiConverter.dll
    2013-10-05 08:52:23 ----AC---- C:\Windows\system32\WMPhoto.dll
    2013-10-05 08:52:23 ----AC---- C:\Windows\system32\msmpeg2vdec.dll
    2013-10-05 08:52:22 ----AC---- C:\Windows\SYSWOW64\WMPhoto.dll
    2013-10-05 08:52:22 ----AC---- C:\Windows\SYSWOW64\WindowsCodecsExt.dll
    2013-10-05 08:52:22 ----AC---- C:\Windows\SYSWOW64\d3d10core.dll
    2013-10-05 08:52:22 ----AC---- C:\Windows\SYSWOW64\d3d10_1core.dll
    2013-10-05 08:52:22 ----AC---- C:\Windows\SYSWOW64\d3d10.dll
    2013-10-05 08:52:22 ----AC---- C:\Windows\system32\FntCache.dll
    2013-10-05 08:52:22 ----AC---- C:\Windows\system32\dxgi.dll
    2013-10-05 08:52:22 ----AC---- C:\Windows\system32\d3d10warp.dll
    2013-10-05 08:52:22 ----AC---- C:\Windows\system32\d2d1.dll
    2013-10-05 08:52:21 ----AC---- C:\Windows\SYSWOW64\d3d10level9.dll
    2013-10-05 08:52:21 ----AC---- C:\Windows\SYSWOW64\d3d10_1.dll
    2013-10-05 08:52:21 ----AC---- C:\Windows\SYSWOW64\d2d1.dll
    2013-10-05 08:52:21 ----AC---- C:\Windows\system32\WindowsCodecsExt.dll
    2013-10-05 08:52:21 ----AC---- C:\Windows\system32\d3d10core.dll
    2013-10-05 08:52:21 ----AC---- C:\Windows\system32\d3d10_1core.dll
    2013-10-05 08:52:21 ----AC---- C:\Windows\system32\d3d10_1.dll
    2013-10-05 08:52:21 ----AC---- C:\Windows\system32\d3d10.dll
    2013-10-05 08:52:20 ----AC---- C:\Windows\SYSWOW64\UIAnimation.dll
    2013-10-05 08:52:20 ----AC---- C:\Windows\SYSWOW64\dxgi.dll
    2013-10-05 08:52:20 ----AC---- C:\Windows\SYSWOW64\d3d10warp.dll
    2013-10-05 08:52:20 ----AC---- C:\Windows\system32\UIAnimation.dll
    2013-10-05 08:52:20 ----AC---- C:\Windows\system32\d3d10level9.dll
    2013-10-05 03:26:15 ----D---- C:\Windows\CheckSur
    2013-10-05 03:13:12 ----AC---- C:\Windows\system32\drivers\WUDFRd.sys
    2013-10-05 03:13:12 ----AC---- C:\Windows\system32\drivers\WUDFPf.sys
    2013-10-05 03:13:09 ----AC---- C:\Windows\system32\WUDFSvc.dll
    2013-10-05 03:13:08 ----AC---- C:\Windows\system32\WUDFPlatform.dll
    2013-10-05 03:13:02 ----AC---- C:\Windows\system32\WUDFCoinstaller.dll
    2013-10-05 03:13:01 ----AC---- C:\Windows\system32\WUDFx.dll
    2013-10-05 03:13:01 ----AC---- C:\Windows\system32\WUDFHost.exe
    2013-10-05 01:49:44 ----D---- C:\Users\UpMe\AppData\Roaming\DG
    2013-10-05 01:49:24 ----D---- C:\Program Files (x86)\Thread Manager
    2013-10-05 00:55:24 ----D---- C:\Users\UpMe\AppData\Roaming\WebMoney
    2013-10-05 00:34:56 ----D---- C:\Program Files (x86)\WebMoney Agent
    2013-10-05 00:34:53 ----AD---- C:\ProgramData\TEMP
    2013-10-05 00:34:22 ----D---- C:\Program Files (x86)\WebMoney
    2013-10-04 12:36:11 ----AC---- C:\Windows\system32\drivers\dxgmms1.sys
    2013-10-04 12:36:11 ----AC---- C:\Windows\system32\cdd.dll
    2013-10-04 12:36:01 ----AC---- C:\Windows\SYSWOW64\dhcpcsvc6.dll
    2013-10-04 12:36:01 ----AC---- C:\Windows\SYSWOW64\dhcpcore6.dll
    2013-10-04 12:36:01 ----AC---- C:\Windows\system32\dhcpcsvc6.dll
    2013-10-04 12:36:01 ----AC---- C:\Windows\system32\dhcpcore6.dll
    2013-10-04 12:35:57 ----AC---- C:\Windows\system32\mstscax.dll
    2013-10-04 12:35:56 ----AC---- C:\Windows\SYSWOW64\mstscax.dll
    2013-10-04 12:35:56 ----AC---- C:\Windows\SYSWOW64\aaclient.dll
    2013-10-04 12:35:56 ----AC---- C:\Windows\system32\aaclient.dll
    2013-10-04 12:35:55 ----AC---- C:\Windows\SYSWOW64\tsgqec.dll
    2013-10-04 12:35:55 ----AC---- C:\Windows\system32\tsgqec.dll
    2013-10-04 12:35:50 ----AC---- C:\Windows\SYSWOW64\crypt32.dll
    2013-10-04 12:35:50 ----AC---- C:\Windows\system32\crypt32.dll
    2013-10-04 12:35:49 ----AC---- C:\Windows\SYSWOW64\wintrust.dll
    2013-10-04 12:35:49 ----AC---- C:\Windows\SYSWOW64\cryptsvc.dll
    2013-10-04 12:35:49 ----AC---- C:\Windows\SYSWOW64\cryptnet.dll
    2013-10-04 12:35:49 ----AC---- C:\Windows\system32\wintrust.dll
    2013-10-04 12:35:49 ----AC---- C:\Windows\system32\cryptsvc.dll
    2013-10-04 12:35:49 ----AC---- C:\Windows\system32\cryptnet.dll
    2013-10-04 12:35:36 ----AC---- C:\Windows\system32\authui.dll
    2013-10-04 12:35:31 ----AC---- C:\Windows\SYSWOW64\authui.dll
    2013-10-04 12:35:31 ----AC---- C:\Windows\system32\consent.exe
    2013-10-04 12:35:31 ----AC---- C:\Windows\system32\appinfo.dll
    2013-10-04 12:35:27 ----AC---- C:\Windows\system32\wwansvc.dll
    2013-10-04 12:35:27 ----AC---- C:\Windows\system32\wwanprotdim.dll
    2013-10-04 12:35:26 ----AC---- C:\Windows\system32\drivers\ntfs.sys
    2013-10-04 12:35:20 ----AC---- C:\Windows\SYSWOW64\tzres.dll
    2013-10-04 12:35:20 ----AC---- C:\Windows\system32\tzres.dll
    2013-10-04 12:35:14 ----AC---- C:\Windows\system32\drivers\RNDISMP.sys
    2013-10-04 12:35:14 ----AC---- C:\Windows\system32\drivers\ndis.sys
    2013-10-04 12:35:11 ----AC---- C:\Windows\system32\KernelBase.dll
    2013-10-04 12:35:10 ----AC---- C:\Windows\SYSWOW64\KernelBase.dll
    2013-10-04 12:35:10 ----AC---- C:\Windows\system32\winsrv.dll
    2013-10-04 12:35:10 ----AC---- C:\Windows\system32\kernel32.dll
    2013-10-04 12:35:09 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
    2013-10-04 12:35:09 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-synch-l1-1-0.dll
    2013-10-04 12:35:09 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localregistry-l1-1-0.dll
    2013-10-04 12:35:09 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
    2013-10-04 12:35:09 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
    2013-10-04 12:35:09 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
    2013-10-04 12:35:09 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
    2013-10-04 12:35:09 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
    2013-10-04 12:35:09 ----AC---- C:\Windows\SYSWOW64\kernel32.dll
    2013-10-04 12:35:09 ----AC---- C:\Windows\system32\smss.exe
    2013-10-04 12:35:09 ----AC---- C:\Windows\system32\csrsrv.dll
    2013-10-04 12:35:09 ----AC---- C:\Windows\system32\conhost.exe
    2013-10-04 12:35:08 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-string-l1-1-0.dll
    2013-10-04 12:35:08 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
    2013-10-04 12:35:08 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-profile-l1-1-0.dll
    2013-10-04 12:35:08 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processthreads-l1-1-0.dll
    2013-10-04 12:35:08 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
    2013-10-04 12:35:08 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
    2013-10-04 12:35:08 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-misc-l1-1-0.dll
    2013-10-04 12:35:08 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-memory-l1-1-0.dll
    2013-10-04 12:35:08 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-file-l1-1-0.dll
    2013-10-04 12:35:08 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
    2013-10-04 12:35:08 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
    2013-10-04 12:35:08 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
    2013-10-04 12:35:08 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
    2013-10-04 12:35:08 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
    2013-10-04 12:35:08 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
    2013-10-04 12:35:08 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
    2013-10-04 12:35:08 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
    2013-10-04 12:35:08 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
    2013-10-04 12:35:08 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
    2013-10-04 12:35:08 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
    2013-10-04 12:35:07 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-io-l1-1-0.dll
    2013-10-04 12:35:07 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-interlocked-l1-1-0.dll
    2013-10-04 12:35:07 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-heap-l1-1-0.dll
    2013-10-04 12:35:07 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-handle-l1-1-0.dll
    2013-10-04 12:35:07 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-fibers-l1-1-0.dll
    2013-10-04 12:35:07 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
    2013-10-04 12:35:07 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-datetime-l1-1-0.dll
    2013-10-04 12:35:07 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
    2013-10-04 12:35:07 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
    2013-10-04 12:35:07 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
    2013-10-04 12:35:07 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
    2013-10-04 12:35:07 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
    2013-10-04 12:35:07 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
    2013-10-04 12:35:07 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
    2013-10-04 12:35:07 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
    2013-10-04 12:35:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-security-base-l1-1-0.dll
    2013-10-04 12:35:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-xstate-l1-1-0.dll
    2013-10-04 12:35:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-util-l1-1-0.dll
    2013-10-04 12:35:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-threadpool-l1-1-0.dll
    2013-10-04 12:35:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localization-l1-1-0.dll
    2013-10-04 12:35:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-delayload-l1-1-0.dll
    2013-10-04 12:35:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-debug-l1-1-0.dll
    2013-10-04 12:35:06 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-console-l1-1-0.dll
    2013-10-04 12:35:06 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
    2013-10-04 12:35:06 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
    2013-10-04 12:35:06 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
    2013-10-04 12:35:06 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
    2013-10-04 12:35:06 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
    2013-10-04 12:35:06 ----AC---- C:\Windows\SYSWOW64\apisetschema.dll
    2013-10-04 12:35:06 ----AC---- C:\Windows\system32\apisetschema.dll
    2013-10-04 12:35:05 ----AC---- C:\Windows\system32\WMVDECOD.DLL
    2013-10-04 12:35:04 ----AC---- C:\Windows\SYSWOW64\WMVDECOD.DLL
    2013-10-04 12:35:03 ----AC---- C:\Windows\system32\drivers\usb8023.sys
    2013-10-04 12:35:02 ----AC---- C:\Windows\system32\rpcrt4.dll
    2013-10-04 12:35:01 ----AC---- C:\Windows\SYSWOW64\rpcrt4.dll
    2013-10-04 12:35:00 ----AC---- C:\Windows\system32\msxml6.dll
    2013-10-04 12:35:00 ----AC---- C:\Windows\system32\msxml3.dll
    2013-10-04 12:34:59 ----AC---- C:\Windows\SYSWOW64\msxml6.dll
    2013-10-04 12:34:59 ----AC---- C:\Windows\SYSWOW64\msxml3.dll
    2013-10-04 12:34:56 ----AC---- C:\Windows\SYSWOW64\netcorehc.dll
    2013-10-04 12:34:56 ----AC---- C:\Windows\SYSWOW64\ncsi.dll
    2013-10-04 12:34:56 ----AC---- C:\Windows\system32\nlasvc.dll
    2013-10-04 12:34:56 ----AC---- C:\Windows\system32\netcorehc.dll
    2013-10-04 12:34:56 ----AC---- C:\Windows\system32\ncsi.dll
    2013-10-04 12:34:56 ----AC---- C:\Windows\system32\iphlpsvc.dll
    2013-10-04 12:34:55 ----AC---- C:\Windows\SYSWOW64\nlaapi.dll
    2013-10-04 12:34:55 ----AC---- C:\Windows\SYSWOW64\netevent.dll
    2013-10-04 12:34:55 ----AC---- C:\Windows\system32\nlaapi.dll
    2013-10-04 12:34:55 ----AC---- C:\Windows\system32\netevent.dll
    2013-10-04 12:34:55 ----AC---- C:\Windows\system32\drivers\tcpipreg.sys
    2013-10-04 12:34:53 ----AC---- C:\Windows\SYSWOW64\qedit.dll
    2013-10-04 12:34:53 ----AC---- C:\Windows\system32\qedit.dll
    2013-10-04 12:34:52 ----AC---- C:\Windows\SYSWOW64\dpnet.dll
    2013-10-04 12:34:52 ----AC---- C:\Windows\system32\dpnet.dll
    2013-10-04 12:34:33 ----AC---- C:\Windows\SYSWOW64\ncrypt.dll
    2013-10-04 12:34:33 ----AC---- C:\Windows\system32\ncrypt.dll
    2013-10-04 12:34:31 ----A---- C:\Windows\system32\OxpsConverter.exe
    2013-10-04 12:34:16 ----AC---- C:\Windows\SYSWOW64\usp10.dll
    2013-10-04 12:34:16 ----AC---- C:\Windows\system32\usp10.dll
    2013-10-04 12:34:15 ----AC---- C:\Windows\system32\drivers\tssecsrv.sys
    2013-10-04 12:34:13 ----AC---- C:\Windows\system32\Wpc.dll
    2013-10-04 12:34:13 ----AC---- C:\Windows\system32\gameux.dll
    2013-10-04 12:34:12 ----AC---- C:\Windows\SYSWOW64\Wpc.dll
    2013-10-04 12:34:12 ----AC---- C:\Windows\SYSWOW64\gameux.dll
    2013-10-04 12:33:42 ----AC---- C:\Windows\SYSWOW64\kerberos.dll
    2013-10-04 12:33:42 ----AC---- C:\Windows\system32\kerberos.dll
    2013-10-04 12:33:35 ----AC---- C:\Windows\system32\wow64win.dll
    2013-10-04 12:33:35 ----AC---- C:\Windows\system32\wow64cpu.dll
    2013-10-04 12:33:35 ----AC---- C:\Windows\system32\ntvdm64.dll
    2013-10-04 12:33:16 ----AC---- C:\Windows\SYSWOW64\synceng.dll
    2013-10-04 12:33:16 ----AC---- C:\Windows\system32\synceng.dll
    2013-10-04 12:33:13 ----AC---- C:\Windows\system32\shell32.dll
    2013-10-04 12:33:12 ----AC---- C:\Windows\SYSWOW64\shell32.dll
    2013-10-04 12:33:11 ----AC---- C:\Windows\SYSWOW64\shdocvw.dll
    2013-10-04 12:33:11 ----AC---- C:\Windows\system32\shdocvw.dll
    2013-10-04 12:33:08 ----AC---- C:\Windows\SYSWOW64\win32spl.dll
    2013-10-04 12:33:08 ----AC---- C:\Windows\system32\win32spl.dll
    2013-10-04 12:33:06 ----AC---- C:\Windows\system32\taskhost.exe
    2013-10-04 12:33:02 ----AC---- C:\Windows\SYSWOW64\cryptdlg.dll
    2013-10-04 12:33:02 ----AC---- C:\Windows\system32\cryptdlg.dll
    2013-10-04 12:32:58 ----AC---- C:\Windows\system32\drivers\netio.sys
    2013-10-04 12:32:57 ----AC---- C:\Windows\system32\drivers\FWPKCLNT.SYS
    2013-10-04 12:32:55 ----AC---- C:\Windows\SYSWOW64\certutil.exe
    2013-10-04 12:32:55 ----AC---- C:\Windows\system32\certutil.exe
    2013-10-04 12:32:54 ----AC---- C:\Windows\SYSWOW64\certenc.dll
    2013-10-04 12:32:54 ----AC---- C:\Windows\system32\certenc.dll
    2013-10-04 12:32:37 ----AC---- C:\Windows\system32\d3d11.dll
    2013-10-04 12:32:36 ----AC---- C:\Windows\SYSWOW64\d3d11.dll
    2013-10-04 12:17:48 ----D---- C:\Users\UpMe\AppData\Roaming\Unity
    2013-10-04 10:28:16 ----D---- C:\Users\UpMe\AppData\Roaming\Rockstar Games
    2013-10-04 10:28:15 ----D---- C:\ProgramData\Rockstar Games
    2013-10-04 04:12:29 ----D---- C:\Users\UpMe\AppData\Roaming\Mirillis
    2013-10-04 04:12:29 ----D---- C:\ProgramData\Mirillis
    2013-10-04 01:47:52 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
    2013-10-04 01:47:48 ----D---- C:\Windows\SYSWOW64\Macromed
    2013-10-04 01:47:44 ----D---- C:\Windows\system32\Macromed
    2013-10-04 01:43:40 ----D---- C:\Users\UpMe\AppData\Roaming\WinRAR
    2013-10-04 01:43:37 ----D---- C:\Users\UpMe\AppData\Roaming\Mozilla
    2013-10-04 01:29:47 ----D---- C:\Program Files (x86)\PANDORA.TV
    2013-10-04 01:29:05 ----D---- C:\Program Files (x86)\The KMPlayer
    2013-10-04 0106 ----D---- C:\Users\UpMe\AppData\Roaming\raidcall
    2013-10-04 01:18:36 ----D---- C:\Program Files (x86)\RaidCall
    2013-10-04 01:17:29 ----D---- C:\Program Files (x86)\Mozilla Firefox
    2013-10-04 01:11:52 ----D---- C:\Users\UpMe\AppData\Roaming\BitTorrent
    2013-10-04 01:06:50 ----RASH---- C:\BOOTSECT.BAK
    2013-10-04 01:06:48 ----SHD---- C:\Boot
    2013-10-04 01:05:53 ----D---- C:\Users\UpMe\AppData\Roaming\Macromedia
    2013-10-04 01:05:53 ----D---- C:\Users\UpMe\AppData\Roaming\Adobe
    2013-10-04 01:05:45 ----D---- C:\Users\UpMe\AppData\Roaming\Yandex
    2013-10-04 01:04:56 ----D---- C:\Users\UpMe\AppData\Roaming\Opera Software
    2013-10-04 01:04:53 ----D---- C:\Program Files (x86)\Opera Next
    2013-10-04 01:04:23 ----D---- C:\Program Files (x86)\Mirillis
    2013-10-04 01:03:29 ----A---- C:\Windows\system32\unrar64.dll
    2013-10-04 01:03:29 ----A---- C:\Windows\system32\lagarith.dll
    2013-10-04 01:03:26 ----A---- C:\Windows\system32\ff_vfw.dll
    2013-10-04 01:03:24 ----D---- C:\Program Files\K-Lite Codec Pack x64
    2013-10-04 01:01:20 ----D---- C:\Program Files\WinRAR
    2013-10-04 01:00:57 ----D---- C:\Program Files (x86)\UltraISO
    2013-10-04 01:00:26 ----D---- C:\Users\UpMe\AppData\Roaming\CrystalIdea Software
    2013-10-04 01:00:24 ----D---- C:\Program Files\Uninstall Tool
    2013-10-04 00:59:07 ----D---- C:\ProgramData\IProt
    2013-10-04 00:58:07 ----D---- C:\ProgramData\eSellerate
    2013-10-04 00:55:56 ----D---- C:\Program Files (x86)\VeBest
    2013-10-04 00:47:45 ----D---- C:\ProgramData\AMD
    2013-10-04 00:47:39 ----D---- C:\Program Files\Common Files\ATI Technologies
    2013-10-04 00:45:50 ----D---- C:\Program Files (x86)\ATI Technologies
    2013-10-04 00:45:42 ----A---- C:\Windows\SYSWOW64\ativvsvl.dat
    2013-10-04 00:45:42 ----A---- C:\Windows\SYSWOW64\ativvsva.dat
    2013-10-04 00:45:42 ----A---- C:\Windows\SYSWOW64\atiuxpag.dll
    2013-10-04 00:45:42 ----A---- C:\Windows\SYSWOW64\atiumdva.dll
    2013-10-04 00:45:42 ----A---- C:\Windows\SYSWOW64\atiumdag.dll
    2013-10-04 00:45:42 ----A---- C:\Windows\SYSWOW64\atiu9pag.dll
    2013-10-04 00:45:42 ----A---- C:\Windows\SYSWOW64\atipblag.dat
    2013-10-04 00:45:42 ----A---- C:\Windows\SYSWOW64\atidxx32.dll
    2013-10-04 00:45:42 ----A---- C:\Windows\SYSWOW64\aticfx32.dll
    2013-10-04 00:45:42 ----A---- C:\Windows\SYSWOW64\ati2edxx.dll
    2013-10-04 00:45:42 ----A---- C:\Windows\SYSWOW64\amdocl_ld32.exe
    2013-10-04 00:45:42 ----A---- C:\Windows\SYSWOW64\amdocl_as32.exe
    2013-10-04 00:45:42 ----A---- C:\Windows\system32\ativvsvl.dat
    2013-10-04 00:45:42 ----A---- C:\Windows\system32\ativvsva.dat
    2013-10-04 00:45:42 ----A---- C:\Windows\system32\atiuxp64.dll
    2013-10-04 00:45:42 ----A---- C:\Windows\system32\atipblag.dat
    2013-10-04 00:45:42 ----A---- C:\Windows\system32\ATIODE.exe
    2013-10-04 00:45:42 ----A---- C:\Windows\system32\ATIODCLI.exe
    2013-10-04 00:45:42 ----A---- C:\Windows\system32\atiedu64.dll
    2013-10-04 00:45:42 ----A---- C:\Windows\system32\atidxx64.dll
    2013-10-04 00:45:42 ----A---- C:\Windows\system32\aticfx64.dll
    2013-10-04 00:45:42 ----A---- C:\Windows\system32\atibtmon.exe
    2013-10-04 00:45:42 ----A---- C:\Windows\system32\amdocl_ld64.exe
    2013-10-04 00:45:42 ----A---- C:\Windows\system32\amdocl_as64.exe
    2013-10-04 00:45:41 ----D---- C:\Program Files\ATI
    2013-10-04 00:45:15 ----D---- C:\Program Files\ATI Technologies
    2013-10-04 00:43:09 ----D---- C:\Program Files\VIA
    2013-10-04 00:43:07 ----D---- C:\Windows\system32\SRSLabs
    2013-10-04 00:40:02 ----N---- C:\Windows\difxapi.dll
    2013-10-04 00:40:02 ----D---- C:\Program Files (x86)\VIA
    2013-10-04 00:37:52 ----D---- C:\Program Files\Realtek
    2013-10-04 00:37:44 ----A---- C:\Windows\system32\RtkHDM64.dll
    2013-10-04 00:37:44 ----A---- C:\Windows\system32\RTEEP64H.dll
    2013-10-04 00:37:44 ----A---- C:\Windows\system32\RTEEL64H.dll
    2013-10-04 00:37:44 ----A---- C:\Windows\system32\RTEEG64H.dll
    2013-10-04 00:37:44 ----A---- C:\Windows\system32\RTEED64H.dll
    2013-10-04 00:37:44 ----A---- C:\Windows\system32\RHDMEx64.dll
    2013-10-04 00:37:44 ----A---- C:\Windows\system32\RHCoInst64.dll
    2013-10-04 00:37:44 ----A---- C:\Windows\system32\RH3DHT64.dll
    2013-10-04 00:37:44 ----A---- C:\Windows\system32\RH3DAA64.dll
    2013-10-04 00:37:44 ----A---- C:\Windows\system32\R4EEP64H.dll
    2013-10-04 00:37:44 ----A---- C:\Windows\system32\R4EEL64H.dll
    2013-10-04 00:37:44 ----A---- C:\Windows\system32\R4EEG64H.dll
    2013-10-04 00:37:44 ----A---- C:\Windows\system32\R4EED64H.dll
    2013-10-04 00:37:44 ----A---- C:\Windows\system32\R4EEA64H.dll
    2013-10-04 00:37:44 ----A---- C:\Windows\system32\drivers\RtHDMIVX.sys
    2013-10-04 00:37:25 ----HD---- C:\Program Files (x86)\Temp
    2013-10-04 00:35:40 ----A---- C:\Windows\system32\RTNUninst64.dll
    2013-10-04 00:35:40 ----A---- C:\Windows\system32\RtNicProp64.dll
    2013-10-04 00:35:40 ----A---- C:\Windows\system32\drivers\Rt64win7.sys
    2013-10-04 00:35:37 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
    2013-10-04 00:35:37 ----D---- C:\Program Files (x86)\Realtek
    2013-10-04 00:34:44 ----D---- C:\Program Files (x86)\Intel
    2013-10-04 00:34:44 ----A---- C:\Windows\SYSWOW64\CSVer.dll
    2013-10-04 00:33:14 ----D---- C:\Intel
    2013-10-04 00:25:29 ----D---- C:\ProgramData\DriverGenius
    2013-10-04 00:22:48 ----D---- C:\Windows\SoftwareDistribution
    2013-10-04 00:22:40 ----D---- C:\Program Files (x86)\Microsoft Security Client
    2013-10-04 00:22:36 ----SHD---- C:\Windows\Installer
    2013-10-04 00:22:36 ----D---- C:\Program Files\Microsoft Security Client
    2013-10-04 00:13:16 ----D---- C:\Users\UpMe\AppData\Roaming\Identities
    2013-10-04 00:13:01 ----SD---- C:\Users\UpMe\AppData\Roaming\Microsoft
    2013-10-04 00:12:53 ----SHD---- C:\ProgramData\Шаблоны
    2013-10-04 00:12:53 ----SHD---- C:\ProgramData\Рабочий стол
    2013-10-04 00:12:53 ----SHD---- C:\ProgramData\Избранное
    2013-10-04 00:12:53 ----SHD---- C:\ProgramData\Документы
    2013-10-04 00:12:53 ----SHD---- C:\ProgramData\Главное меню
    2013-10-04 00:10:58 ----D---- C:\Temp
    2013-10-04 00:10:18 ----D---- C:\Windows\CSC
    2013-10-04 00:08:17 ----D---- C:\Windows\Prefetch
    2013-10-04 00:07:51 ----D---- C:\Windows\temp
    2013-10-04 00:07:39 ----SHD---- C:\System Volume Information
    2013-08-30 19:58:50 ----A---- C:\Windows\system32\kdbsdk64.dll
    2013-08-30 19:53:48 ----A---- C:\Windows\SYSWOW64\kdbsdk32.dll

    ======Список файлов и папок, измененных за последние 3 месяца======

    2013-10-16 06:27:19 ----RD---- C:\Program Files
    2013-10-16 06:26:32 ----D---- C:\Windows\SYSWOW64\drivers
    2013-10-16 03:08:15 ----D---- C:\Windows\system32\config
    2013-10-15 22:53:08 ----D---- C:\Windows\System32
    2013-10-15 22:53:08 ----AC---- C:\Windows\system32\PerfStringBackup.INI
    2013-10-15 22:53:07 ----D---- C:\Windows\inf
    2013-10-15 22:02:05 ----RD---- C:\Program Files (x86)
    2013-10-14 03:45:59 ----D---- C:\Windows\system32\catroot2
    2013-10-12 23:29:49 ----D---- C:\Windows\SysWOW64
    2013-10-12 22:42:39 ----D---- C:\Windows
    2013-10-11 03:58:26 ----D---- C:\Windows\Microsoft.NET
    2013-10-11 03:51:19 ----RSD---- C:\Windows\assembly
    2013-10-11 03:25:15 ----D---- C:\Program Files\Internet Explorer
    2013-10-11 03:25:15 ----D---- C:\Program Files (x86)\Internet Explorer
    2013-10-11 03:25:14 ----D---- C:\Windows\AppPatch
    2013-10-11 03:00:28 ----D---- C:\Windows\system32\ru-RU
    2013-10-09 15:43:44 ----D---- C:\Program Files (x86)\Common Files
    2013-10-09 15:43:37 ----HD---- C:\ProgramData
    2013-10-09 15:24:56 ----RSD---- C:\Windows\Fonts
    2013-10-06 23:55:37 ----D---- C:\Windows\Logs
    2013-10-06 22:31:47 ----D---- C:\Windows\SYSWOW64\en-US
    2013-10-06 22:31:47 ----D---- C:\Windows\system32\en-US
    2013-10-06 07:21:37 ----D---- C:\Windows\rescache
    2013-10-05 12:07:29 ----D---- C:\Windows\Web
    2013-10-05 10:41:11 ----D---- C:\Windows\SYSWOW64\ru-RU
    2013-10-05 10:41:10 ----D---- C:\Windows\system32\wbem
    2013-10-05 10:41:10 ----D---- C:\Windows\system32\drivers\ru-RU
    2013-10-05 10:41:10 ----D---- C:\Program Files\Windows Defender
    2013-10-05 10:41:10 ----D---- C:\Program Files (x86)\Windows Defender
    2013-10-05 10:41:08 ----D---- C:\Windows\SYSWOW64\migration
    2013-10-05 10:41:08 ----D---- C:\Windows\system32\migration
    2013-10-05 10:41:08 ----D---- C:\Windows\PolicyDefinitions
    2013-10-05 10:41:05 ----D---- C:\Windows\SYSWOW64\zh-TW
    2013-10-05 10:41:05 ----D---- C:\Windows\SYSWOW64\zh-HK
    2013-10-05 10:41:05 ----D---- C:\Windows\SYSWOW64\zh-CN
    2013-10-05 10:41:05 ----D---- C:\Windows\SYSWOW64\tr-TR
    2013-10-05 10:41:05 ----D---- C:\Windows\SYSWOW64\sv-SE
    2013-10-05 10:41:05 ----D---- C:\Windows\SYSWOW64\pt-PT
    2013-10-05 10:41:05 ----D---- C:\Windows\SYSWOW64\pt-BR
    2013-10-05 10:41:05 ----D---- C:\Windows\SYSWOW64\pl-PL
    2013-10-05 10:41:05 ----D---- C:\Windows\SYSWOW64\nl-NL
    2013-10-05 10:41:05 ----D---- C:\Windows\SYSWOW64\nb-NO
    2013-10-05 10:41:05 ----D---- C:\Windows\SYSWOW64\ko-KR
    2013-10-05 10:41:05 ----D---- C:\Windows\SYSWOW64\ja-JP
    2013-10-05 10:41:05 ----D---- C:\Windows\SYSWOW64\it-IT
    2013-10-05 10:41:05 ----D---- C:\Windows\SYSWOW64\hu-HU
    2013-10-05 10:41:05 ----D---- C:\Windows\SYSWOW64\fr-FR
    2013-10-05 10:41:05 ----D---- C:\Windows\SYSWOW64\fi-FI
    2013-10-05 10:41:05 ----D---- C:\Windows\SYSWOW64\es-ES
    2013-10-05 10:41:05 ----D---- C:\Windows\SYSWOW64\el-GR
    2013-10-05 10:41:05 ----D---- C:\Windows\SYSWOW64\de-DE
    2013-10-05 10:41:05 ----D---- C:\Windows\SYSWOW64\da-DK
    2013-10-05 10:41:05 ----D---- C:\Windows\SYSWOW64\cs-CZ
    2013-10-05 10:41:05 ----D---- C:\Windows\system32\pt-PT
    2013-10-05 10:41:05 ----D---- C:\Windows\system32\pt-BR
    2013-10-05 10:41:05 ----D---- C:\Windows\system32\pl-PL
    2013-10-05 10:41:05 ----D---- C:\Windows\system32\ko-KR
    2013-10-05 10:41:05 ----D---- C:\Windows\system32\it-IT
    2013-10-05 10:41:05 ----D---- C:\Windows\system32\hu-HU
    2013-10-05 10:41:04 ----D---- C:\Windows\system32\zh-TW
    2013-10-05 10:41:04 ----D---- C:\Windows\system32\zh-HK
    2013-10-05 10:41:04 ----D---- C:\Windows\system32\zh-CN
    2013-10-05 10:41:04 ----D---- C:\Windows\system32\tr-TR
    2013-10-05 10:41:04 ----D---- C:\Windows\system32\sv-SE
    2013-10-05 10:41:04 ----D---- C:\Windows\system32\nl-NL
    2013-10-05 10:41:04 ----D---- C:\Windows\system32\nb-NO
    2013-10-05 10:41:04 ----D---- C:\Windows\system32\ja-JP
    2013-10-05 10:41:04 ----D---- C:\Windows\system32\fr-FR
    2013-10-05 10:41:04 ----D---- C:\Windows\system32\fi-FI
    2013-10-05 10:41:04 ----D---- C:\Windows\system32\es-ES
    2013-10-05 10:41:04 ----D---- C:\Windows\system32\el-GR
    2013-10-05 10:41:04 ----D---- C:\Windows\system32\de-DE
    2013-10-05 10:41:04 ----D---- C:\Windows\system32\da-DK
    2013-10-05 10:41:04 ----D---- C:\Windows\system32\cs-CZ
    2013-10-05 09:32:02 ----D---- C:\Program Files\Common Files
    2013-10-04 01:47:53 ----D---- C:\Windows\Tasks
    2013-10-04 01:47:53 ----D---- C:\Windows\system32\Tasks
    2013-10-04 00:45:48 ----D---- C:\Program Files\Common Files\Microsoft Shared
    2013-10-04 00:22:40 ----SD---- C:\ProgramData\Microsoft
    2013-10-04 00:13:59 ----D---- C:\Windows\SYSWOW64\wbem
    2013-10-04 00:13:13 ----SHD---- C:\$RECYCLE.BIN
    2013-10-04 00:12:58 ----RD---- C:\Users
    2013-10-04 00:12:54 ----D---- C:\Windows\Panther
    2013-10-04 00:12:53 ----D---- C:\Program Files\Windows NT
    2013-10-04 00:10:16 ----D---- C:\Windows\system32\spool
    2013-10-04 00:10:08 ----D---- C:\Windows\system32\Msdtc
    2013-08-07 04:22:02 ----C---- C:\Windows\system32\MpSigStub.exe

    ======Список драйверов (тип запуска: R=Запущен, S=остановлен, 0=Загрузочный, 1=Системный, 2=Автоматически, 3=Вручную, 4=Отключено)======

    R0 MpFilter;Microsoft Malware Protection Driver; C:\Windows\system32\DRIVERS\MpFilter.sys [2013-06-18 247216]
    R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-21 213888]
    R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2010-11-21 514560]
    R1 ISODrive;ISO DVD/CD-ROM Device Driver; \??\C:\Program Files (x86)\UltraISO\Drivers\ISODrv64.sys [2010-01-29 115600]
    R2 NisDrv;Microsoft Network Inspection System; C:\Windows\system32\DRIVERS\NisDrvWFP.sys [2013-06-18 139616]
    R3 amdkmdag;amdkmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2013-08-31 12528640]
    R3 amdkmdap;amdkmdap; C:\Windows\system32\DRIVERS\atikmpag.sys [2013-08-31 618496]
    R3 AtiHDAudioService;AMD Function Driver for HD Audio Service; C:\Windows\system32\drivers\AtihdW76.sys [2013-07-05 96256]
    R3 LVUSBS64;Logitech USB Monitor Filter; C:\Windows\system32\DRIVERS\LVUSBS64.sys [2008-07-26 50072]
    R3 PID_PEPI;Logitech QuickCam IM(PID_PEPI); C:\Windows\system32\DRIVERS\LV302V64.SYS [2008-07-26 2624408]
    R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt64win7.sys [2013-04-10 849992]
    R3 VIAHdAudAddService;VIA High Definition Audio Driver Service; C:\Windows\system32\drivers\viahduaa.sys [2013-05-11 2211528]
    S3 CisUtMonitor;CisUtMonitor; C:\Windows\system32\DRIVERS\CisUtMonitor.sys [2011-10-30 33360]
    S3 dmvsc;dmvsc; C:\Windows\system32\drivers\dmvsc.sys [2010-11-21 71168]
    S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
    S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2010-11-21 165888]
    S3 RTHDMIAzAudService;Service for HDMI; C:\Windows\system32\drivers\RtHDMIVX.sys [2012-06-05 237968]
    S3 s3cap;s3cap; C:\Windows\system32\drivers\vms3cap.sys [2010-11-21 6656]
    S3 storvsc;storvsc; C:\Windows\system32\drivers\storvsc.sys [2010-11-21 34688]
    S3 vmbus;vmbus; C:\Windows\system32\drivers\vmbus.sys [2010-11-21 199552]
    S3 VMBusHID;VMBusHID; C:\Windows\system32\drivers\VMBusHID.sys [2010-11-21 21760]

    ======Список служб (тип запуска: R=Запущена, S=остановлена, 0=Загрузочная, 1=Системная, 2=Автоматически, 3=Вручную, 4=Отключено)======

    R2 AMD External Events Utility;AMD External Events Utility; C:\Windows\system32\atiesrxx.exe [2013-08-31 239616]
    R2 MsMpSvc;Microsoft Antimalware Service; c:\Program Files\Microsoft Security Client\MsMpEng.exe [2013-08-12 23808]
    R2 PanService;PandoraService; C:\Program Files (x86)\PANDORA.TV\PanService\KMPService.exe [2013-07-08 1922600]
    R2 VIAKaraokeService;VIA Karaoke digital mixer Service; C:\Windows\system32\viakaraokesrv.exe [2012-12-11 27768]
    R3 NisSrv;@C:\Program Files\Microsoft Security Client\MpAsDesc.dll,-243; c:\Program Files\Microsoft Security Client\NisSrv.exe [2013-08-12 366600]
    S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2012-07-09 104912]
    S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2012-07-08 123856]
    S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2013-09-05 171680]
    S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-10-09 257416]
    S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 27136]
    S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
    S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
    S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2013-10-05 1255736]
    S4 aspnet_state;ASP.NET State Service; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2012-07-08 51648]
    S4 CscService;Автономные файлы; C:\Windows\System32\svchost.exe [2009-07-14 27136]
    S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2012-07-09 139696]
    S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2012-07-09 139696]
    S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2012-07-09 139696]

    -----------------EOF-----------------
    Скрыть
    Последний раз редактировалось thyrex; 16.10.2013 в 22:09.

  8. #7
    Junior Member (OID) Репутация
    Регистрация
    15.10.2013
    Сообщений
    4
    Вес репутации
    39
    непомогло!)

  9. #8
    Senior Helper Репутация Репутация Репутация Репутация Репутация Репутация Репутация Репутация Репутация Репутация Репутация Аватар для mike 1
    Регистрация
    05.11.2011
    Адрес
    Москва
    Сообщений
    42,908
    Вес репутации
    1060
    Где логи, которые вас просили сделать?
    Инструкции выполняются в том порядке, в котором они вам даны.
    А вы совершаете эти 4 ошибки на форумах? Оставить отзыв Обучение на VirusInfo
    Защита от неизвестных троянцев-шифровальщиков => FixSecurity, Kaspersky Anti-Ransomware Tool
    Интересный блог Андрея Иванова по шифровальщикам
    Антивирус на 30 дней => https://clck.ru/FKsBt

Похожие темы

  1. Всем всем всем.Кто может помочь.
    От nbnfy в разделе Оффтоп
    Ответов: 0
    Последнее сообщение: 08.08.2013, 15:28
  2. Ответов: 5
    Последнее сообщение: 22.08.2009, 12:19

Метки для этой темы

Свернуть/Развернуть Ваши права в разделе

  • Вы не можете создавать новые темы
  • Вы не можете отвечать в темах
  • Вы не можете прикреплять вложения
  • Вы не можете редактировать свои сообщения
  •  
Page generated in 0.01458 seconds with 20 queries